referentenagentur-bertelsmann.de
HTML metadata
Technology
- Server
- Apache
Third-party hosts loaded (1)
- penguin.epccm19.com×1
Contact
- Phone
Registration
- Updated
- 2026-01-28
- Name servers
-
- dns009.arvato-systems.de.
- dns017.arvato-systems.de.
- ns1.arvato-systems.de.
- ns2.arvato-systems.de.
DNS records live
- NS
-
- dns009.arvato-systems.de
- dns017.arvato-systems.de
- ns1.arvato-systems.de
- ns2.arvato-systems.de
- MX
-
- 10 referentenagenturbertelsmann-de04c.mail.protection.outlook.com
- TXT
-
76zg6qrh3w0gvz4pkcw5zll58ynq95ks
- Verified for
-
- Microsoft 365
Email authentication strong
- SPF
-
v=spf1 mx include:spf.bert.group include:spf.servicemail24.de include:spf.protection.outlook.com include:_spf.senders.scnem.com -allstrict (-all) - DMARC
-
v=DMARC1; p=reject; sp=reject; rua=mailto:prh-rua@dmarc.servicemail24.de; pct=100; ri=86400policy: reject (enforced) · sp=reject - DKIM
-
- selector1:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAveaT44MKFDKQBD+H/9cgsY/f6GFqN4y0q//oT8mPOhQx2VcRqAxjOD+Eowj5rasulFQEDKwndzJccc…
selectors probed - selector1:
Certificate (current)
RapidSSL TLS RSA CA G1
Expires in 273 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-frame-options
- x-content-type-options
- referrer-policy
- permissions-policy
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
Header values
- referrer-policy
strict-origin-when-cross-origin- x-frame-options
DENY- permissions-policy
geolocation=(), midi=(), sync-xhr=(), microphone=(), camera=(), magnetometer=(), gyroscope=(), fullscreen=(), payment=()- x-content-type-options
nosniff- content-security-policy
default-src https: data: 'unsafe-inline' 'unsafe-eval' 'wasm-unsafe-eval' api.friendlycaptcha.com; worker-src * blob: ; child-src * blob: ; connect-src api.friendlycaptcha.com https://*.google-analytics.com https://*.analytics.google.com https://*.googletagmanager.com https://scnem2.com *.epccm19.com www.google.com *.googlesyndication.com *.gstatic.com *.doubleclick.net *.googleadservices.com- strict-transport-security
max-age=31536000; includeSubdomains